Traq 'authenticate()' Function Remote Code Execution Vulnerability

Summary
Traq is prone to a remote code-execution vulnerability. An attacker can exploit this issue to execute arbitrary code with admin privileges. Failed exploit attempts will result in a denial-of- service condition. Traq versions prior to 2.3.1 are vulnerable.
Solution
Vendor updates are available. Please see the references for details.
References